Partner Program

Whitelabel Penetration Testing
for IT Partners

You sell. I deliver. Report goes out in your name — not mine.

CISSP Certified OSCP+ Certified 17+ Years Offensive Security EU-wide, 100% Remote

The Challenge

Your clients ask for pentests.
What do you do?

MSPs and IT providers face this every week. Most options are costly, risky, or simply not scalable.

Not ideal

Refer out

You send the client to a third-party firm. You lose the revenue, the relationship ownership, and the upsell opportunity.

Not ideal

Build a security team

Hiring certified security professionals is expensive, slow, and hard to justify without consistent volume. Too much overhead for most MSPs.

Recommended
Smart choice

Partner with a specialist

Offer pentesting under your own brand. Keep the client. Keep the revenue. Pay only per engagement — no overhead, no commitment.

The Solution

A silent partner for your security services

I work exclusively in the background. Your client sees your brand, receives your report, and interacts only with your team. I deliver the technical work.

This is not a referral arrangement. It's a true whitelabel delivery model — built around your business, not mine.

  • Report delivered with your logo and company name
  • NDA signed before every engagement
  • You set the price — you keep the margin
  • Professionally insured, CISSP + OSCP+ certified

How it works

01
You sell the pentest To your existing client at your price
02
You brief me Scope, target, timeline — via a simple form
03
I execute the test 100% remote, typically 2–5 business days
04
You present the report Branded with your logo — to your client

Process

From handshake to delivered report

A streamlined process designed so you can offer security services without any friction.

1

You Sell

You identify the opportunity, pitch the service, and close the deal with your client at your own price point.

2

You Brief Me

Share the scope, target URL or IP range, and timeline. I'll confirm feasibility and raise questions within 24 hours on business days.

3

I Deliver

I execute the full pentest remotely using industry-standard methodology (OWASP, PTES). You get a draft to review before the final report.

4

You Present

Receive the final report branded with your name and logo. Present it to your client. Collect payment. I stay invisible.

Why Partners Choose CyberScore

What you get from the partnership

Zero investment

No setup fees, no retainers. You only pay when you have a confirmed engagement. Start offering pentests immediately.

Fully whitelabel

Every deliverable carries your brand. Your client never sees my name. The relationship stays entirely yours.

Your margin, your call

Pricing is flexible per partner. You decide what to charge your client — your margin is yours to keep.

EU-wide coverage

100% remote delivery means I work with partners and their clients across Netherlands, UK, DACH, Nordics, and beyond.

Senior-level expertise

CISSP + OSCP+ certified. 17+ years in offensive security across government, defence, financial services, and healthcare.

Professional reports

Executive summary plus full technical findings with PoC evidence and actionable remediation guidance. Ready to present to any audience.

Services Available

What you can offer your clients

All services delivered remotely. Pricing discussed per partner to protect your margin.

Service Typical timeline Client provides Type
Web Application Penetration Test 3–5 business days URL + test accounts Core
API Security Assessment 2–4 business days API endpoints + credentials Core
Cloud Security Review 2–3 business days Read-only cloud access Core
External Network Penetration Test 2–3 business days IP ranges + written authorisation Core
Internal Network Penetration Test 4–5 business days VPN access + domain account Add-on
Secure Code Review / SAST 3–5 business days Repository access Add-on
OSINT / Attack Surface Mapping 1–2 business days Company name + domain Add-on
NIS2 / DORA Gap Analysis 3–5 business days Access to documentation + stakeholder Add-on

Whitelabel pricing is discussed per partner — reach out to get indicative rates for your business model.

FAQ

Questions from new partners

Do I need technical security knowledge to work with you?

No. You handle the client relationship. I handle all technical execution. You'll receive the completed report in your name — no security background required to sell, manage, or present the work.

Is it fully whitelabel — will my client ever see your name?

Completely. Reports are delivered with your brand and company name. I operate as a silent partner throughout — your client has no contact with me and no visibility into who executed the test.

Is there a minimum commitment or upfront cost?

None. You pay per engagement, only when you have confirmed work. No retainers, no subscriptions, no setup fees. You can start your first engagement without any financial commitment upfront.

What happens if my client asks questions during the test?

All client communication stays with you. I provide progress updates and any technical talking points you might need. Your client relationship remains entirely yours from start to finish.

What about liability and professional insurance?

I carry professional liability insurance. A standard NDA is signed before every engagement begins. Scope of work is agreed in writing before any testing starts — protecting both parties throughout.

Which countries and regions do you cover?

All services are 100% remote, so geography is no barrier. I currently work with partners in the Netherlands, UK, DACH region, and Nordics. If your clients are in the EU or UK, I can deliver.

How long have you been doing this kind of work?

17+ years in offensive security, with senior roles at leading European security firms including Fox-IT / NCC Group. I've delivered engagements across government, defence, financial services, healthcare, biotech, and critical infrastructure.

Can we discuss pricing before committing to anything?

Absolutely. A 20-minute call is enough to understand your business model and discuss pricing that works for both sides. No commitment required for that conversation.

Get Started

Let's explore if this fits your business

A 20-minute call is all it takes. No commitment, no sales pressure — just a straightforward conversation about how whitelabel pentesting could work for your clients.

Prefer email? info@cyberscore.nl — response within 24 hours on business days.